⤷ Title: Public Exploit Disclosed for Januscape KVM Escape and LPE (CVE-2026-53359)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:05:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #0_day #CVE_2026_53359 #Januscape #KVM Escape #LPE
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:05:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #0_day #CVE_2026_53359 #Januscape #KVM Escape #LPE
Daily CyberSecurity
Public Exploit Disclosed for Januscape KVM Escape and LPE (CVE-2026-53359)
Security researcher Hyunwoo Kim recently published technical details and a proof-of-concept for the Januscape KVM escape vulnerability. This flaw tracks officially as CVE-2026-53359. Januscape is …
⤷ Title: The Illusion of Security: Kairos Ransomware and the Rise of Data Extortion Without Encryption
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 14:53:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyber Security #data extortion #Kairos ransomware
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 14:53:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyber Security #data extortion #Kairos ransomware
Daily CyberSecurity
The Illusion of Security: Kairos Ransomware and the Rise of Data Extortion Without Encryption
A recent case study published by Ransom-ISAC reveals a disconcerting trend in cyber extortion. As outlined in this ransomware case study, a local government in Ohio paid a $1 million ransom to pre…
⤷ Title: Critical Cursor IDE RCE Vulnerability Exposes Workspaces
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 14:24:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cursor IDE #CVE_2026_50548 #CVE_2026_50549 #DuneSlide attack #rce
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 14:24:44 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cursor IDE #CVE_2026_50548 #CVE_2026_50549 #DuneSlide attack #rce
Daily CyberSecurity
Critical Cursor IDE RCE Vulnerability Exposes Workspaces
TL;DR Cato AI Labs found a critical Cursor IDE RCE vulnerability. These bugs allow attackers to break out of the sandbox environment. Consequently, a threat actor can execute remote code on a vict…
⤷ Title: OpenSSL Error Handling Defect Breaks apt HTTPS Access in FIPS Mode
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 13:23:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #APT #Debian #ERR_clear_error #error queue #FIPS mode #openssl #OpenSSL error handling #Secure Coding #tls
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 13:23:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #APT #Debian #ERR_clear_error #error queue #FIPS mode #openssl #OpenSSL error handling #Secure Coding #tls
Daily CyberSecurity
OpenSSL Error Handling Defect Breaks apt HTTPS Access in FIPS Mode
TL;DR A Debian maintainer flagged a widespread OpenSSL error handling problem across the open-source ecosystem. It surfaced when apt failed HTTPS repository access on FIPS-only systems, then trace…
⤷ Title: Microsoft GDID Tracking: How Windows Caught a Hacker
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 12:53:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybersecurity #GDID #Microsoft #privacy #Scattered Spider #Telemetry
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 12:53:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybersecurity #GDID #Microsoft #privacy #Scattered Spider #Telemetry
Daily CyberSecurity
Microsoft GDID Tracking: How Windows Caught a Hacker
On July 1, 2026, the US Department of Justice and the FBI announced the extradition of a 19-year-old hacker. The US-Estonian citizen, Peter Stokes, was extradited from Finland to face trial in a C…
⤷ Title: Your Subdomain Enum Is Only Finding Half the Attack Surface
════════════════════════
𐀪 Author: Abhishek meena
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:05:32 GMT
════════════════════════
⌗ Tags: #reconnaissance #bug_bounty_tips #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Abhishek meena
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:05:32 GMT
════════════════════════
⌗ Tags: #reconnaissance #bug_bounty_tips #bug_bounty_writeup #bug_bounty
Medium
Your Subdomain Enum Is Only Finding Half the Attack Surface
Most hunters stop at 60% coverage without realizing it.
⤷ Title: npm install is the new phishing email
════════════════════════
𐀪 Author: Stanislav Klevtsov
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:59:40 GMT
════════════════════════
⌗ Tags: #ai #cve #infosec #cybersecurity #vulnerability
════════════════════════
𐀪 Author: Stanislav Klevtsov
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:59:40 GMT
════════════════════════
⌗ Tags: #ai #cve #infosec #cybersecurity #vulnerability
Medium
npm install is the new phishing email
108 malicious packages and browser extensions across npm, Golang, and Google Chrome. All tied to North Korean campaign.
⤷ Title: SSRF to Full Cloud Compromise: A Methodology Breakdown
════════════════════════
𐀪 Author: Chirag Goel
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:58:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #information_security #penetration_testing
════════════════════════
𐀪 Author: Chirag Goel
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:58:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #information_security #penetration_testing
Medium
SSRF to Full Cloud Compromise: A Methodology Breakdown
A companion piece to “They Said Our Health Matters. My Privacy Didn’t.” This one is for the security crowd. No target, no identifiers, just…
⤷ Title: Meet SEPTA: the AI hacker that knows what it doesn’t know
════════════════════════
𐀪 Author: Rui Fernandes
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:01:03 GMT
════════════════════════
⌗ Tags: #large_language_models #cybersecurity #artificial_intelligence #penetration_testing #offensive_security
════════════════════════
𐀪 Author: Rui Fernandes
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:01:03 GMT
════════════════════════
⌗ Tags: #large_language_models #cybersecurity #artificial_intelligence #penetration_testing #offensive_security
Medium
Meet SEPTA: the AI hacker that knows what it doesn’t know
Large Language Models have basically become the new intern on every cybersecurity team, fast, eager, surprisingly capable… and now and…
⤷ Title: TryHackMe Writeup: Frosteau Busy with Vim
════════════════════════
𐀪 Author: Berkay AĞGÜL
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:09:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme_writeup #tryhackme #tryhackme_walkthrough #cybercrime
════════════════════════
𐀪 Author: Berkay AĞGÜL
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:09:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme_writeup #tryhackme #tryhackme_walkthrough #cybercrime
⤷ Title: Overpass {1,2,3} — Tryhackme Walkup
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:33:28 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #overpass3 #overpass1 #tryhackme #overpass2
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:33:28 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #overpass3 #overpass1 #tryhackme #overpass2
Medium
Overpass {1,2,3} — Tryhackme Walkup
Overpass THM
⤷ Title: {Ra & Ra 2} — TryHackMe Walkthrough
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:04:32 GMT
════════════════════════
⌗ Tags: #ra2_tryhackme #ra_tryhackme #tryhackme #tryhackme_walkthrough #tryhackme_writeup
════════════════════════
𐀪 Author: S Aryan Malto
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:04:32 GMT
════════════════════════
⌗ Tags: #ra2_tryhackme #ra_tryhackme #tryhackme #tryhackme_walkthrough #tryhackme_writeup
Medium
{Ra & Ra 2} — TryHackMe Walkthrough
TL;DR Walkthrough to the TryHackMe Ra practice VM, including a few things I didn’t see on the linked write-ups.
⤷ Title: Fools Mate Pair
════════════════════════
𐀪 Author: Domon
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:01:02 GMT
════════════════════════
⌗ Tags: #capture_the_flag #ctf_writeup #cybersecurity #tryhackme
════════════════════════
𐀪 Author: Domon
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 16:01:02 GMT
════════════════════════
⌗ Tags: #capture_the_flag #ctf_writeup #cybersecurity #tryhackme
Medium
Fools Mate Pair
Two new Capture-the-Flag rooms, the Fools Mate and its sequel Fools Mate, Revenge.
⤷ Title: Beginning My 100-Day Cybersecurity Journey: A Practical Blue Team & SOC Learning Series
════════════════════════
𐀪 Author: SIAM AHMED
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:37:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #blue_team #soc_analyst #learning
════════════════════════
𐀪 Author: SIAM AHMED
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 17:37:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #blue_team #soc_analyst #learning
Medium
Beginning My 100-Day Cybersecurity Journey: A Practical Blue Team & SOC Learning Series
Cybersecurity is a field where learning never stops. Every day brings new attack techniques, new defensive strategies, and new technologies…
⤷ Title: How an Exposed .git Directory Left a Scientific Observatory Vulnerable
════════════════════════
𐀪 Author: Novahunter
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 06:26:50 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #ethical_hacking #cybersecurity #information_security #web_application_security
════════════════════════
𐀪 Author: Novahunter
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 06:26:50 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #ethical_hacking #cybersecurity #information_security #web_application_security
Medium
How an Exposed .git Directory Left a Scientific Observatory Vulnerable
Introduction 🔍
⤷ Title: Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 00:04:26 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 07 Jul 2026 00:04:26 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 23:07:01 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 23:07:01 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: How a Missing Rate Limit Could Have Flooded an Entire Support System
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:15:14 GMT
════════════════════════
⌗ Tags: #bug_bounty
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:15:14 GMT
════════════════════════
⌗ Tags: #bug_bounty
Medium
How a Missing Rate Limit Could Have Flooded an Entire Support System
Responsible Disclosure: This vulnerability was responsibly disclosed, fixed by the vendor, and published only after receiving disclosure…
⤷ Title: Finding a Stored XSS in a Support Ticket System: A Responsible Disclosure Story
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:08:55 GMT
════════════════════════
⌗ Tags: #bug_bounty
════════════════════════
𐀪 Author: Ilianothingg
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:08:55 GMT
════════════════════════
⌗ Tags: #bug_bounty
Medium
Finding a Stored XSS in a Support Ticket System: A Responsible Disclosure Story
Responsible Disclosure Notice: The vulnerability described in this article was responsibly reported, verified, and remediated before…
⤷ Title: Introducing the Secure Code Review Challenge (Practice Real-World Reviews)
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 18:53:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #code_review #software_development #application_security
════════════════════════
𐀪 Author: Mohamed AboElKheir
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 18:53:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #code_review #software_development #application_security
Medium
Introducing the Secure Code Review Challenge (Practice Real-World Reviews)
📢 I have some exciting news: I’m launching a new series called the Secure Code Review Challenge. Check out the video version of this story…
⤷ Title: PENTESTING CON AGENTES DE IA
════════════════════════
𐀪 Author: Adrian Romanov
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:10:13 GMT
════════════════════════
⌗ Tags: #cybercrime #hacking #pentesting #artificial_intelligence #ai
════════════════════════
𐀪 Author: Adrian Romanov
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 19:10:13 GMT
════════════════════════
⌗ Tags: #cybercrime #hacking #pentesting #artificial_intelligence #ai
Medium
PENTESTING CON AGENTES DE IA
Hola Comunidad.